Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet NSE6_OTS_AR-7.6 Exam - Topic 2 Question 6 Discussion

Actual exam question for Fortinet's NSE6_OTS_AR-7.6 exam
Question #: 6
Topic #: 2
[All NSE6_OTS_AR-7.6 Questions]

As the first step in your OT network protection plan, you must identify the OT protocols that the FortiGate device supports. Which two configurations must you implement on this FortiGate device? (Choose two answers)

Show Suggested Answer Hide Answer
Suggested Answer: B, C

The correct answers are B and C. The study guide states that ''You can use application control signatures to detect OT protocols'' and that ''Application control detects the protocols used in applications like Modbus, IEC 104, and the contents of the telecontrol messages''. It also shows that a Modbus application control profile can be enabled on a firewall policy ''for OT protocol visibility in the monitor status.'' This directly supports B, because application control is the feature used to identify and monitor OT protocols on FortiGate.

The guide also explains under IPS that ''By default, OT signatures are excluded from the signatures lists on the GUI until you enable them on the CLI'' using config ips global and set exclude-signatures none. Once enabled, FortiGate can use those OT signatures for OT-aware inspection and protection. That supports C as the second required configuration. A is related to device discovery, not protocol identification, and D is focused on exploit and vulnerability detection rather than the first-step goal of identifying OT protocols.


Contribute your Thoughts:

0/2000 characters
Rolland
2 days ago
I remember practicing a similar question where we had to focus on application control for OT. So, I feel like implementing an Application Control security profile could be a good choice.
upvoted 0 times
...
Lovetta
7 days ago
I think enabling the OT signatures is definitely one of the configurations we need to implement, but I'm not entirely sure about the second one.
upvoted 0 times
...

Save Cancel